From 95eda5845e2e6f53518a855ff65ad6171d655210 Mon Sep 17 00:00:00 2001 From: Tom Boucher Date: Sun, 5 Apr 2026 20:03:47 -0400 Subject: [PATCH] fix(tests): allowlist execute-phase.md in prompt-injection scan (#1835) MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit execute-phase.md grew to ~51K chars after the code-review gate step was added in #1630, tripping the 50K size heuristic in the injection scanner. The limit is calibrated for user-supplied input — trusted workflow source files that legitimately exceed it are allowlisted individually, following the same pattern as discuss-phase.md. Co-authored-by: Claude Sonnet 4.6 --- tests/prompt-injection-scan.test.cjs | 1 + 1 file changed, 1 insertion(+) diff --git a/tests/prompt-injection-scan.test.cjs b/tests/prompt-injection-scan.test.cjs index 17a34d683..5c8bc32dc 100644 --- a/tests/prompt-injection-scan.test.cjs +++ b/tests/prompt-injection-scan.test.cjs @@ -52,6 +52,7 @@ const SCAN_EXTS = new Set(['.md', '.cjs', '.js', '.json']); const ALLOWLIST = new Set([ 'get-shit-done/bin/lib/security.cjs', // The security module itself 'get-shit-done/workflows/discuss-phase.md', // Large workflow (~50K) with power mode + i18n + 'get-shit-done/workflows/execute-phase.md', // Large orchestration workflow (~51K) with wave execution + code-review gate 'hooks/gsd-prompt-guard.js', // The prompt guard hook 'tests/security.test.cjs', // Security tests 'tests/prompt-injection-scan.test.cjs', // This file